blob: 65ff71f059cc24f45582e567c24f858bc1d6da6b [file] [log] [blame]
David Brownde7729e2017-01-09 10:41:35 -07001/// Interface wrappers to C API entering to the bootloader
2
3use area::AreaDesc;
David Brown2cbc4702017-07-06 14:18:58 -06004use simflash::Flash;
David Brownde7729e2017-01-09 10:41:35 -07005use libc;
David Brownbdb6db72017-07-06 10:14:37 -06006use api;
David Brown353610d2017-11-06 11:31:31 -07007use std::sync::Mutex;
8
9lazy_static! {
10 /// Mutex to lock the simulation. The C code for the bootloader uses
11 /// global variables, and is therefore non-reentrant.
12 static ref BOOT_LOCK: Mutex<()> = Mutex::new(());
13}
David Brownde7729e2017-01-09 10:41:35 -070014
15/// Invoke the bootloader on this flash device.
Fabio Utzig9b0ee902017-11-23 19:49:00 -020016pub fn boot_go(flash: &mut Flash, areadesc: &AreaDesc, counter: Option<&mut i32>,
Fabio Utzig269d2862018-10-24 17:45:38 -030017 catch_asserts: bool) -> (i32, u8) {
David Brown353610d2017-11-06 11:31:31 -070018 let _lock = BOOT_LOCK.lock().unwrap();
19
David Brownee61c832017-11-06 11:13:25 -070020 unsafe {
Fabio Utzig73ffc442018-10-24 21:49:09 -030021 api::set_flash(0, flash);
Fabio Utzig9b0ee902017-11-23 19:49:00 -020022 raw::c_catch_asserts = if catch_asserts { 1 } else { 0 };
23 raw::c_asserts = 0u8;
David Brownee61c832017-11-06 11:13:25 -070024 raw::flash_counter = match counter {
25 None => 0,
26 Some(ref c) => **c as libc::c_int
27 };
28 }
David Brownbdb6db72017-07-06 10:14:37 -060029 let result = unsafe { raw::invoke_boot_go(&areadesc.get_c() as *const _) as i32 };
Fabio Utzig9b0ee902017-11-23 19:49:00 -020030 let asserts = unsafe { raw::c_asserts };
David Brownee61c832017-11-06 11:13:25 -070031 unsafe {
32 counter.map(|c| *c = raw::flash_counter as i32);
Fabio Utzig1c9aea52018-11-15 10:36:07 -020033 api::clear_flash(0);
David Brownee61c832017-11-06 11:13:25 -070034 };
Fabio Utzig9b0ee902017-11-23 19:49:00 -020035 (result, asserts)
David Brownde7729e2017-01-09 10:41:35 -070036}
37
David Brown541860c2017-11-06 11:25:42 -070038pub fn boot_trailer_sz(align: u8) -> u32 {
39 unsafe { raw::boot_slots_trailer_sz(align) }
David Brownde7729e2017-01-09 10:41:35 -070040}
41
Fabio Utziga0bc9b52017-06-28 09:19:55 -030042pub fn boot_magic_sz() -> usize {
43 unsafe { raw::BOOT_MAGIC_SZ as usize }
44}
45
46pub fn boot_max_align() -> usize {
47 unsafe { raw::BOOT_MAX_ALIGN as usize }
48}
49
Fabio Utzig92be3fb2017-12-05 08:52:53 -020050pub fn ecdsa256_sign(privkey: &[u8], hash: &[u8]) -> Result<[u8; 64], &'static str> {
51 unsafe {
52 let mut signature: [u8; 64] = [0; 64];
53 if raw::ecdsa256_sign_(privkey.as_ptr(), hash.as_ptr(),
54 hash.len() as u32, signature.as_mut_ptr()) == 1 {
55 return Ok(signature);
56 }
57 return Err("Failed signature generation");
58 }
59}
60
Fabio Utzig1e48b912018-09-18 09:04:18 -030061pub fn rsa_oaep_encrypt(pubkey: &[u8], seckey: &[u8]) -> Result<[u8; 256], &'static str> {
62 unsafe {
63 let mut encbuf: [u8; 256] = [0; 256];
64 if raw::rsa_oaep_encrypt_(pubkey.as_ptr(), pubkey.len() as u32,
65 seckey.as_ptr(), seckey.len() as u32,
66 encbuf.as_mut_ptr()) == 0 {
67 return Ok(encbuf);
68 }
69 return Err("Failed to encrypt buffer");
70 }
71}
72
73pub fn kw_encrypt(kek: &[u8], seckey: &[u8]) -> Result<[u8; 24], &'static str> {
74 unsafe {
75 let mut encbuf = [0u8; 24];
76 if raw::kw_encrypt_(kek.as_ptr(), seckey.as_ptr(), encbuf.as_mut_ptr()) == 0 {
77 return Ok(encbuf);
78 }
79 return Err("Failed to encrypt buffer");
80 }
81}
82
David Brownde7729e2017-01-09 10:41:35 -070083mod raw {
84 use area::CAreaDesc;
85 use libc;
86
87 extern "C" {
88 // This generates a warning about `CAreaDesc` not being foreign safe. There doesn't appear to
89 // be any way to get rid of this warning. See https://github.com/rust-lang/rust/issues/34798
90 // for information and tracking.
David Brownbdb6db72017-07-06 10:14:37 -060091 pub fn invoke_boot_go(areadesc: *const CAreaDesc) -> libc::c_int;
David Brownde7729e2017-01-09 10:41:35 -070092 pub static mut flash_counter: libc::c_int;
Fabio Utzig9b0ee902017-11-23 19:49:00 -020093 pub static mut c_asserts: u8;
94 pub static mut c_catch_asserts: u8;
David Brownde7729e2017-01-09 10:41:35 -070095
Fabio Utzig7ebb7c22017-04-26 10:59:31 -030096 pub fn boot_slots_trailer_sz(min_write_sz: u8) -> u32;
Fabio Utziga0bc9b52017-06-28 09:19:55 -030097
98 pub static BOOT_MAGIC_SZ: u32;
99 pub static BOOT_MAX_ALIGN: u32;
Fabio Utzig92be3fb2017-12-05 08:52:53 -0200100
101 pub fn ecdsa256_sign_(privkey: *const u8, hash: *const u8,
102 hash_len: libc::c_uint,
103 signature: *mut u8) -> libc::c_int;
Fabio Utzig1e48b912018-09-18 09:04:18 -0300104
105 pub fn rsa_oaep_encrypt_(pubkey: *const u8, pubkey_len: libc::c_uint,
106 seckey: *const u8, seckey_len: libc::c_uint,
107 encbuf: *mut u8) -> libc::c_int;
108
109 pub fn kw_encrypt_(kek: *const u8, seckey: *const u8,
110 encbuf: *mut u8) -> libc::c_int;
David Brownde7729e2017-01-09 10:41:35 -0700111 }
112}